CVE-2023-38259
UNKNOWN
Published 2023-07-27T00:31:37.779Z
Actions:
Expert Analysis
Professional remediation guidance
Get tailored security recommendations from our analyst team for CVE-2023-38259. We'll provide specific mitigation strategies based on your environment and risk profile.
No CVSS data available
Description
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Monterey 12.6.8, macOS Ventura 13.5, macOS Big Sur 11.7.9. An app may be able to access user-sensitive data.
Available Exploits
No exploits available for this CVE.
Related News
No news articles found for this CVE.
Affected Products
Affected Versions:
Affected Versions:
Affected Versions:
GitHub Security Advisories
Community-driven vulnerability intelligence from GitHub
⚠ Unreviewed
MODERATE
GHSA-38rm-v4v3-vhx2
Advisory Details
An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Ventura 13.5, macOS Monterey 12.6.8, macOS Big Sur 11.7.9. Processing a file may lead to a denial-of-service or potentially disclose memory contents.
CVSS Scoring
CVSS Score
5.0
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
References
Advisory provided by GitHub Security Advisory Database. Published: July 27, 2023, Modified: April 4, 2024
References
Published: 2023-07-27T00:31:37.779Z
Last Modified: 2024-10-23T13:43:38.175Z
Copied to clipboard!